osint

Tools & Defense

OSINT for Penetration Testers: A Practical Introduction to Passive Reconnaissance

A hands-on intro to OSINT for pentesters: theHarvester, recon-ng, Google dorks, Shodan, and Maltego, plus blue-team defenses.
Tools & Defense

Passive and Active Reconnaissance: Subdomain Enumeration with Amass and ffuf

A practical walkthrough of passive and active recon: DNS footprinting, subdomain enumeration with Amass, and vhost/path fuzzing with ffuf.
Mobile API OSINT

OSINT for Red Teamers: Mapping People and Infrastructure

A practical red-team OSINT workflow for enumerating people and infrastructure with theHarvester, Shodan, breach data, and DNS recon.